actions / attest-sbomLinks
Action for generating SBOM attestations for workflow artifacts
☆43Updated this week
Alternatives and similar repositories for attest-sbom
Users that are interested in attest-sbom are comparing it to the libraries listed below
Sorting:
- An Action for printing OIDC claims in GitHub Actions.☆117Updated 4 months ago
- A GitHub Action used for publishing an Action to ghcr.io as an OCI container.☆114Updated 6 months ago
- Action for generating attestations for workflow artifacts☆64Updated this week
- Reusable workflows for developing actions☆76Updated last month
- ☆56Updated this week
- GitHub Action to enable automated security updates and open a issue/PR in repos in an org that have dependency files but no dependabot.ya…☆220Updated this week
- GitHub token permissions Monitor and Advisor actions☆353Updated last week
- Template repo for creating container actions using https://github.com/actions/toolkit/☆157Updated 2 weeks ago
- Find stale repositories in a GitHub organization.☆195Updated last week
- A GitHub Action to suggest removal of non-organization members from CODEOWNERS files☆137Updated this week
- Official GitHub Action for OpenSSF Scorecard.☆356Updated this week
- GitHub Action to expose GitHub runtime to the workflow☆87Updated 2 weeks ago
- Need to centrally manage and run Actions workflows across multiple repositories? This app does it for you.☆135Updated last year
- ☆40Updated this week
- A GitHub (gh) CLI extension to manage the GitHub Actions caches being used in a GitHub repository.☆323Updated last year
- Lock Action to support deployment locking for the branch-deploy Action☆53Updated last week
- Runner Container Hooks for GitHub Actions☆125Updated last week
- A GitHub Action to send queries to GitHub's GraphQL API☆131Updated this week
- GitHub Action to sync GitHub labels in the declarative way☆218Updated 2 years ago
- A Github Action to ensure that actions are pinned to full length commit SHAs☆49Updated this week
- Generate SBOMs with gh CLI☆199Updated 8 months ago
- Example of using Actions OIDC token to proxy into a private network☆105Updated 10 months ago
- Run multiple open source security static analysis tools without the added complexity with OSSAR (Open Source Static Analysis Runner).☆99Updated 3 months ago
- Find license compliance and security issues in your applications with FOSSA and GitHub Actions.☆65Updated last week
- Orchestrate GitHub Actions Security☆303Updated 3 weeks ago
- Proof-of-concept SLSA provenance generator for GitHub Actions☆100Updated 3 years ago
- GitHub Action to check PRs for signed commits☆59Updated last year
- GitHub Action that will get a scoped short lived token for Actions workflows using a GitHub Application.☆201Updated 10 months ago
- GitHub Actions Importer helps you plan and automate the migration of Azure DevOps, Bamboo, CircleCI, GitLab, Jenkins, and Travis CI pipel…☆61Updated last year
- GitHub Action that given an organization or repository, produces information about the contributors over the specified time period.☆139Updated last week